Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9rx7-cp4p-rwx4

Опубликовано: 14 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kylin. Improper authorization in job information retrieval, where an attacker may get access to unauthorized jobs in other projects.

This issue affects Apache Kylin: from 4 through 5.0.3.

Users are recommended to upgrade to version 5.0.4, which fixes the issue.

Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kylin. Improper authorization in job information retrieval, where an attacker may get access to unauthorized jobs in other projects.

This issue affects Apache Kylin: from 4 through 5.0.3.

Users are recommended to upgrade to version 5.0.4, which fixes the issue.

EPSS

Процентиль: 21%
0.00288
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-280

Связанные уязвимости

CVSS3: 4.3
nvd
29 дней назад

Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kylin. Improper authorization in job information retrieval, where an attacker may get access to unauthorized jobs in other projects. This issue affects Apache Kylin: from 4 through 5.0.3. Users are recommended to upgrade to version 5.0.4, which fixes the issue.

EPSS

Процентиль: 21%
0.00288
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-280